General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 777 Views
  • 0 replies
  • 0 Likes

User-ID mapping when host has 2 interfaces

We've run into a problem which I understand, I'm just not sure how to fix.  A user on her laptop logs into the domain while her laptop is docked, so UIA has her ip address mapping to the wired connection.  Later, she undocks and flips over to wireles

...

Resolved! H.323 cisco telepresence configuration

 Hi guys,

 

I am very new in PA administration and I am trying to set up voice communication between cisco telepresence sx-20 located with private IP address in my Internal network to some terminals outside the network. I am using IP address like calli

...

Untitled.png
Untitled1.png
maximn by L1 Bithead
  • 5790 Views
  • 7 replies
  • 1 Likes

Erroneous application port

I am getting a deny statement for port 8531 for application ssl. 8531 is for ms-update and my policy allows that but the default policy is denying it because it is tying it to ssl for some strange reason. I don't know how to get around that.

tglear by L1 Bithead
  • 2313 Views
  • 3 replies
  • 0 Likes

problem on user time session timeout, only countdown

Hi to all,

I'm new on PaloAlto PA-500 7.1 version.
I've searched on and I think I did not find my case.
Sorry if there is not and found it.

I have the wifi sessions (via AP aerohive) timeout all in countdown.

The users are in domain via LDAP and RADIUS.

Th

...

aerspa by L1 Bithead
  • 4020 Views
  • 6 replies
  • 0 Likes

Resolved! Upgrade Path

my appliance is on PAN OS 8.0.0. Can we upgrade directly to 8.0.2. Can't find any info about this.

 

Thanks

AlbertJJ by L1 Bithead
  • 2654 Views
  • 1 replies
  • 0 Likes

Resolved! Allow Vimeo From Specific Website

Hello,

I have a customer that would like to block vimeo completely but allow it specifically from one website, aaregistry.org.  I have PAN-OS 4.1.6 running right now and have tried to use a custom URL category in my rule to allow vimeo specifically f

...

url filtering question

Hi,

How PA  categorize (business or  research....) and filter if a proxy server re writing a url . 

 

for example 

if the original url is https://yyyy.com  and after rewriting  it became https://yyyy.com.proxy.mycompany.com 

 

 

Is there a possiblity  givin

...

simsim by L4 Transporter
  • 4861 Views
  • 11 replies
  • 0 Likes

GRE Tunnel Interference

Has anyone seen interferrence with GRE tunnels passing through PANFW's set up in virtualwire for passive IDS? The policies are all any, any, any etc and there is no inspection configured? I've read NAT'ing issues may have something to do with it, but

...

hsts

Hi,

Sorry to ask a  general question here 

Is there  a reason sometimes hsts break the connection with an error (your cnenction not private ).

If two persons using same browser (eg; chrome ) , for first person it works and second does not 

Is there somet

...

simsim by L4 Transporter
  • 2466 Views
  • 1 replies
  • 0 Likes

Link Failover with BGP to Multihomed ISP

This configuration it's for a very particular case on my site.

I have three links with two ISP (for example: ISP1a,ISP1b,ISP2)

I cannot annunce at the same time my entire class over ISP1a and ISP1b for two reason:

1) BGP loop problem

2) For ISP commercia

...

Globalprotect Mac

Globalprotect stopped working - I unistall and installed again and still not connecting

I am using Mac Sierra version 10.12

Please any suggestions?

 

Thanks

 

Rachel

 

haratz by L0 Member
  • 2235 Views
  • 4 replies
  • 0 Likes
  • 23985 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels